- Company Name
- Capco
- Job Title
- IT Security Engineer
- Job Description
-
**Job Title**
IT Security Engineer
**Role Summary**
Consult with financial services and insurance clients to assess, design, and implement cybersecurity controls that protect critical assets and ensure compliance with industry regulations.
**Expectations**
- Minimum 3 years of hands‑on cybersecurity consulting or equivalent experience.
- Proven ability to perform comprehensive security assessments and translate findings into actionable strategies.
- Strong client‑facing communication and stakeholder management skills.
- Continuous learning of emerging threats, technologies, and regulatory changes.
**Key Responsibilities**
- Conduct risk‑based security assessments (penetration testing, vulnerability scanning, threat modeling).
- Identify gaps, recommend mitigations, and produce detailed security reports for clients.
- Design and implement tailored security strategies covering network, endpoint, cloud and application layers.
- Select, deploy, and configure security tools (firewalls, SIEM, IDS/IPS, encryption solutions).
- Develop and lead incident response plans and tabletop exercises.
- Guide clients on compliance with GDPR, HIPAA, PCI‑DSS, ISO 27001, NIST, and other relevant frameworks.
- Create, communicate, and enforce security policies, procedures, and training programs.
- Provide ongoing monitoring, reporting, and continuous improvement recommendations.
- Stay current on cyber‑threat landscape and emerging technologies; advise clients accordingly.
**Required Skills**
- Deep knowledge of security frameworks (NIST, ISO 27001, PCI‑DSS, GDPR, etc.).
- Cloud security expertise – securing AWS, Azure, or Google Cloud environments.
- Experience with SIEM, firewalls, IDS/IPS, encryption technologies, and cryptographic controls.
- Proficiency in vulnerability assessment tools and penetration‑testing methodologies.
- Incident response planning and execution.
- Strong analytical, documentation, and reporting abilities.
- Excellent communication and advisory skills for diverse client audiences.
- Ability to work collaboratively in multidisciplinary teams.
**Required Education & Certifications**
- Bachelor’s degree in Computer Science, Information Technology, Cybersecurity, or related discipline.
- Professional certifications preferred: CISSP, CISM, CEH, CompTIA Security+.
- Relevant certifications in cloud security (e.g., AWS Security Specialty, Azure Security Engineer) are a plus.